CVE-2026-76460 actively exploited: Cisco Identity Services Engine Incorrect Use of Privileged APIs Vulnerability
CISA added CVE-2026-76460, affecting Cisco Identity Services Engine, to its Known Exploited Vulnerabilities catalogue. It could allow an unauthenticated, remote attacker to gain unauthorized access to the affected device by bypassing the web-based management interface. Federal agencies must remediate by September 19, 2026.